you should still be able to type even though you cant see what you are actually doing.
from console:
en
yourpassword
conf t
no logging console {then enter}
you should be able to pop that in a text file and just copy and paste
the pix buffer should handle that fine once you have done that the...
well to see if the FW is being abused memory and cpu wise
I would suggest doing a show mem usage and show cpu usage from the enable prompt
do you run a syslog server for your firewall?
its hard to say whats causing your telnet access to stop
and i might be shooting in the dark here but there is a lot of connections trying to leave your firewall on port 9100 ( usually used for Printers or printer management like the HP Jet Direct boxes) and port 37 (the time protocol or NTP)...
I see you have
nat (inside) 0 access-list NoNAT
and a NoNAT access list
Try making your
crypto map match address NoNAT (instead of 101)
and maybe add
isakmp nat-traversal
We use AES-256 on out Cisco VPN clients.
I have to say that it is pretty fast and the overhead is minimal
to give you an idea on a 64kbs link i can get upto about 7.6 to 7.8kBs throughput and with out the VPN client running I max out at about the same
Hi folks I wonder if you can help at all
we have setup a Netgear DG834Gv2 ADSL router to create an IP sec tunnel into the PIX
The ISAKMP and IPSEC tunnel comes up and works beautifully for about 45 to 60 seconds maybe more from time to time, then suddenly the tunnel drops and reconnects and...
ok here is an update
I have enabled telnet on the server in the HO
If I telnet to the server from the branch office either via a machine in the branch office of via the branch offices Cisco 805 the connection is fine for a few characters then hangs
if I telnet to the server using the clients...
Hi
I really hope someone can point be in the right direction.
I have a client with 2 sites they are connected our MPLS VPN
they also have access to the Cisco VPN client. which puts them in their network
Now for the problem
If you log in to the VPN client you can do anything you would be able...
and like an idiot i post without the config
version 12.2
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname gunslingers
!
enable password xxxxxxxxxx
!
mmi polling-interval 60
no mmi auto-configure
no mmi pvc
mmi snmp-timeout...
Hi Ian
I have just been configuring my couter for ADSL (cisco 827)
i was wondering if you could tel me if the config looks ok?
and if so great if not where did I go wrong.
then the next step is the IPsec stuff no problem there done that a few times.
Any help would be great
Thank
Lyndon
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.